Vulnerability in Advanced Networking Option of Oracle Database Server
CVE-2023-21949
3.7LOW
Summary
The Advanced Networking Option of Oracle Database Server contains a vulnerability that can be exploited by an unauthenticated attacker with network access via Oracle Net. This vulnerability allows attackers to manipulate the integrity of data by performing unauthorized operations such as updates, inserts, or deletions on accessible data within the Advanced Networking Option. Affected versions span from 19.3 to 19.19 and from 21.3 to 21.10.
Affected Version(s)
Advanced Networking Option 19.3 <= 19.19
Advanced Networking Option 21.3 <= 21.10
References
CVSS V3.1
Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved